Vulnerabilities > Broadcom > Medium

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-0968 Unspecified vulnerability in Broadcom Etrust Intrusion Detection 3.0
Computer Associates (CA) eTrust Intrusion Detection 3.0 allows remote attackers to cause a denial of service via large size values that are not properly validated before calling the CPImportKey function in the Crypto API.
network
low complexity
broadcom
5.0
2005-05-02 CVE-2005-0583 Unspecified vulnerability in Broadcom License Software 0.1.0.15
Directory traversal vulnerability in Computer Associates (CA) License Client 0.1.0.15 allows remote attackers to create arbitrary files via ..
network
low complexity
broadcom
5.0
2005-05-02 CVE-2005-0581 Unspecified vulnerability in Broadcom License Software 0.1.0.15
Multiple buffer overflows in Computer Associates (CA) License Client and Server 0.1.0.15 allow remote attackers to execute arbitrary code via (1) certain long fields in the Checksum item in a GCR request, (2) a long IP address, hostname, or netmask values in a GCR request, (3) a long last parameter in a GETCONFIG packet, or (4) long values in a request with an invalid format.
local
low complexity
broadcom
4.6
2005-03-02 CVE-2005-0641 Unspecified vulnerability in Broadcom Unicenter Asset Management 4.0
Cross-site scripting (XSS) vulnerability in the Reporter for Computer Associates (CA) Unicenter Asset Management (UAM) 4.0 allows remote attackers to inject arbitrary HTML or web script via the (1) name or (2) description in a report template.
network
broadcom
4.3
2005-03-02 CVE-2005-0640 Unspecified vulnerability in Broadcom Unicenter Asset Management 4.0
Computer Associates (CA) Unicenter Asset Management (UAM) 4.0 does not properly initialize the "Change Credentials for Database" window, which allows local users to recover the SQL Admin password via certain methods.
local
low complexity
broadcom
4.6
2004-12-31 CVE-2004-2305 Unspecified vulnerability in Broadcom Etrust Antivirus EE 6.0/7.0
Computer Associates eTrust Antivirus EE 6.0 through 7.0 allows remote attackers to bypass virus scanning by including a password-protected file in a ZIP file, which causes eTrust to scan only the password protected file and skip the other files.
network
low complexity
broadcom
5.0
2004-09-04 CVE-2004-1663 Engenio/LSI Logic storage controllers, as used in products such as Storagetek D280, and IBM DS4100 (formerly FastT 100) and Brocade SilkWorm Switches, allow remote attackers to cause a denial of service (freeze and possible data corruption) via crafted TCP packets.
network
low complexity
brocade engenio broadcom storagetek ibm
5.0
2004-01-05 CVE-2003-0998 Unknown "potential system security vulnerability" in Computer Associates (CA) Unicenter Remote Control 5.0 through 5.2, and ControlIT 5.0 and 5.1, may allow attackers to gain privileges to the local system account.
local
low complexity
broadcom ca
4.6
2004-01-05 CVE-2003-0997 Unspecified vulnerability in Broadcom Unicenter Remote Control Host 6.0
Unknown "Denial of Service Attack" vulnerability in Computer Associates (CA) Unicenter Remote Control (URC) 6.0 allows attackers to cause a denial of service (CPU consumption in URC host service).
network
low complexity
broadcom
5.0
2004-01-05 CVE-2003-0996 Unspecified vulnerability in Broadcom Unicenter Remote Control Host 6.0
Unknown "System Security Vulnerability" in Computer Associates (CA) Unicenter Remote Control (URC) 6.0 allows attackers to gain privileges via the help interface.
local
low complexity
broadcom
4.6